A command injection vulnerability in ModifyVLANItem of Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an authenticated, remote attacker to send specially crafted HTTP messages and execute arbitrary OS commands with elevated privileges.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: trendmicro

Published: 2020-11-18T18:45:41

Updated: 2024-08-04T16:40:59.456Z

Reserved: 2020-11-13T00:00:00

Link: CVE-2020-28581

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2020-11-18T19:15:12.023

Modified: 2020-11-28T21:58:25.087

Link: CVE-2020-28581

cve-icon Redhat

No data.